Hacktoberfest 2026:维护者为十月标记出来的 issue,仍然开放、适合新手。 浏览 Hacktoberfest issue

feat(action): trust-check/codeowners - Verify actor in CODEOWNERS

未关闭
#40 0 条评论 0 个 reaction 已指派 1 人 在 GitHub 查看

@aRustyDev 已经在做这个了。

开始于 2026年1月27日。

评估

这个 Issue 还没有评估数据。

描述

enhancement new-action

Parent Epic

Part of #22 (Atomic Release Pipeline Actions)

Priority

P2 - Trust validation for auto-merge workflows

Description

Create a composite action that verifies the workflow actor is listed in CODEOWNERS for relevant paths.

Inputs

Input Required Default Description
actor No github.actor GitHub username to verify
paths No - Paths to check ownership for (comma-separated)
codeowners-path No .github/CODEOWNERS Path to CODEOWNERS file
token No github.token GitHub token

Outputs

Output Description
is-owner "true" if actor is a codeowner
matched-pattern CODEOWNERS pattern that matched
owners Comma-separated list of owners for the path

Usage Example

- uses: arustydev/gha/actions/trust-check/codeowners@v1
  id: codeowners
  with:
    actor: ${{ github.actor }}
    paths: "charts/my-chart"

- if: steps.codeowners.outputs.is-owner == 'true'
  run: echo "Actor is authorized"

Implementation Notes

  • Parses CODEOWNERS file format
  • Supports user, team, and email patterns
  • Handles glob patterns in CODEOWNERS
  • Checks team membership via API if team pattern

Source Reference

helm-charts/.github/workflows/auto-merge-integration.yaml:

  • CODEOWNERS verification logic
主要语言
Shell
星标
0
派生
0
PR 合并指标
30 天内没有已合并 PR

贡献指南

打开贡献指南

从这里开始

  1. 先读完整个 Issue,再读项目的贡献指南。
  2. 在 Issue 下留言说明你要接手 —— 这能避免两个人做同样的事。
  3. Fork 仓库,在一个分支上完成修改。
  4. 提交 Pull Request,并在描述里引用这个 Issue 编号。

aRustyDev/gh 的其他 Issue

查看 aRustyDev/gh 的全部 Issue

相似的 Issue

更多 Shell/Bash Issue

把新 issue 发到你的邮箱

精选适合新手参与的 GitHub issue 摘要。